The DSC Book
The DSC Book
"Forever" Edition
About the Book
This is now an open-source book. Anything you choose to pay for the Leanpub version will go entirely to the DevOps Collective’s IT scholarship programs. Visit GitHub.com/dsccommunity/TheDSCBook to contribute to this project!
Microsoft MVP Award recipient Don Jones and in-the-trenches DSC expert Missy Januszko tackle the enormous and complex topic of Desired State Configuration (DSC) in this "agile-published" book that will continue to be expanded and updated over time. Covering everything from design principles and infrastructure deployment, to configuration authoring, and to custom resource design and programming, you'll find everything you need in this comprehensive tome. And what you might not find in this book will be added and revised over time - making this your "forever" book on the subject, unlike traditionally published volumes.
The DSC Book is designed to help you understand how DSC works, and how you can use it in a variety of scenarios. Examples are, for the most part, extremely concise - they're intended to help you understand the needed structure and approach. You should already be very familiar with coding advanced functions ("script cmdlets") in PowerShell, or consider purchasing Learn PowerShell Toolmaking in a Month of Lunches to gain that background knowledge. The practices and approaches presented in the book come from real-world engagements and experiences, and will continue to evolve over time as more and more people engage with DSC. Those "over time" learnings will be incorporated into the book, hopefully making it the last DSC book you'll ever need to buy.
Table of Contents
-
- About This Book
- About the Authors
- Feedback
-
A Note on Code Listings
- Code Samples
-
Introduction
- What is DSC?
- Not Just for Provisioning
- How Does DSC Compare to Group Policy?
- Cattle, Not Pets
- Technology, not Tool
- A 2018 Update: What is DSC Good For?
-
Part 1: Design Decisions
-
Designing DSC
- The Players
- The Pieces
- The CIM Connection
- Uniqueness in MOFs
- Getting the MOF to the LCM
- Configuration Variations
- Understanding Dependencies
-
Designing DSC
-
Part 2: Configuring the Infrastructure
- Infrastructure Prerequisites
-
Configuring the LCM
- Checking the Configuration
- Changing the Configuration
- Deploying the LCM Configuration
- Specifying Configuration Pull Servers
- Specifying DSC Resource Pull Servers
- Specifying Reporting Servers
- Partial Configurations
- Versions and Troubleshooting
-
Setting Up a Pull Server
- Before You Begin
- Reprising the Roles
- A Word of Caution
- Step 1: Install the Module
- Step 2: Get an SSL Certificate
- Step 3: Make a GUID
- Step 4: Set Up DSC
- Step 5: Run and Deploy the Config
- Confirming the Setup
- Life Choices
- Opting Out of the Pull Server Approach
-
Part 3: Testing the Infrastructure
-
Testing Push Mode
- Creating the Configuration
- Running the Configuration to Produce a MOF
- Pushing the MOF
-
Testing Pull Mode
- Creating the Configuration
- Running the Configuration to Produce a MOF
- Deploying the MOF and Module to a Pull Server
- Creating a Meta-Configuration
- Pushing the Meta-Configuration to a Node
- Pulling the Configuration from the Pull Server
- Verifying the Node’s State
-
Testing Push Mode
-
Part 4: Authoring Configurations
-
Basic Configuration Authoring
- Getting Started: The Configuration Block
- Adding Nodes
- Adding a Parameter Block
- Adding Settings
- Adding Basic Logic
- Adding Node-Side Logic
- Documenting Dependencies
- Running the Configuration
- Deploying the MOF
- Wrapping Up
-
Going Further with Configurations
- Again: DSC isn’t Tooling
- Understanding ConfigurationData
- Defining Configuration Data
- Referencing and Using Configuration Data
- All-Nodes Data
- Using the $AllNodes Variable
- Configuration Script Strategies
- Using NonNodeData
-
Poor Man’s Configuration Modularization
- Dot Sourcing
- Approach Analysis
-
Composite Configurations
- Creating a Composite Resource
- Turning the Configuration into a Resource Module
- Using the Composite Resource
- Deploying the Composite Resource
- Approach Analysis
- Design Considerations
-
Partial Configurations
- Summarizing Partial Configuration Pros and Cons
- Authoring a Partial Configuration MOF
- Configuring the LCM for Partial Configurations
- Partial Configuration Dependencies
- Partial Configuration Authoritative Resources
- Mix ‘n’ Match
- File Naming Details
- Deploying MOFs to a Pull Server
-
Basic Configuration Authoring
-
Part 5: Using and Authoring Resources
-
Finding and Using Resources
- Finding What’s Out There
- Installing What’s Out There
- Finding What’s Installed
- Figuring Out What a Resource Wants
-
Custom Resources
- Before We Begin: Function-Based vs. Class-Based
- Writing the Functional Code
- Writing the Interface Module
- Preparing the Module for Use and Deployment
- Triggering a Reboot
-
Class-Based Custom Resources
- Writing the Class-Based Interface Module
- Preparing the Module for Use
-
Best Practices for Resource Design
- Principle One: Resources are an Interface
- Thinking About Design
- For Example
- Advantages of the Approach
- Disadvantage of the Approach
-
The Script Resource
- The Basics
- Cool Tricks
-
Finding and Using Resources
-
Part 6: Advanced Stuff
-
Reporting
- Understanding the Default Report Server
- Querying Report Data
- The AgentId
-
Security and DSC
- A Word on Certificates
- Securing the Pull Server
- Securing Credentials in Configurations
- PSDSCRunAsCredential
- Digital Signing
- DSC in Azure
- DSC on Linux
-
Troubleshooting and Debugging
- Getting Eyes-On
- Resource Debugging
- Stopping a Hung LCM
-
Self-Modifying Configurations
- Understanding the LCM’s Processing
- The Basic Self-Modifying Workflow
- Options
- A Problem to Consider
- Crazy Ideas for What the Bootstrap Can Do
-
The Scaling Question
- DSC Already Scales - But You Don’t
- Let’s Set the Stage
- Raise Cattle, Not Pets
- Enter Containers
- Rock-Solid Infrastructure
- Getting Back to DSC
- The Perfect Example
-
LCM and Pull Server Communications
- The Database
-
Known Problems
- Error configuring the LCM: “Specified Property does not exist,” “MI RESULT 12”
- Registration Key Problems
- maxEnvelopeSize Errors
- Reporting Server and Large Configurations
- Class-Based Resources Can’t be ExclusiveResources in Partials
-
Reporting
Causes Supported

DevOps Collective Scholarships
http://devopscollective.orgSupport IT education scholarships by giving to The DevOps Collective, Inc.
Other books by these authors
The Leanpub 60-day 100% Happiness Guarantee
Within 60 days of purchase you can get a 100% refund on any Leanpub purchase, in two clicks.
See full terms
Do Well. Do Good.
Authors have earned$11,577,045writing, publishing and selling on Leanpub, earning 80% royalties while saving up to 25 million pounds of CO2 and up to 46,000 trees.
Learn more about writing on Leanpub
Free Updates. DRM Free.
If you buy a Leanpub book, you get free updates for as long as the author updates the book! Many authors use Leanpub to publish their books in-progress, while they are writing them. All readers get free updates, regardless of when they bought the book or how much they paid (including free).
Most Leanpub books are available in PDF (for computers), EPUB (for phones and tablets) and MOBI (for Kindle). The formats that a book includes are shown at the top right corner of this page.
Finally, Leanpub books don't have any DRM copy-protection nonsense, so you can easily read them on any supported device.
Learn more about Leanpub's ebook formats and where to read them
Top Books
Recipes for Decoupling
Matthias NobackSignalR on .NET 6 - the Complete Guide
Fiodar SazanavetsLearn everything there is to learn about SignalR and how to integrate it with the latest .NET 6 and C# 10 features. Learn how to connect any type of client to SignalR, including plain WebSocket client. Learn how to build interactive applications that can communicate with each other in real time without making excessive calls.
The BDD Books - Discovery (Japanese Edition)
Gáspár Nagy, Seb Rose, and Yuya Kazamaウクライナ難民を支援 - 2022年5月末まで延長!
この本の売り上げの50%は、 https://unicef.hu/veszhelyzet-ukrajnaban と https://int.depaulcharity.org/fundraising-for-depaul-ukraine/ に寄付されます。
本書籍は、振る舞い駆動開発(Behavior Driven Development, BDD)や受け入れテスト駆動開発(Acceptance Test-Driven Development, ATDD)の発見フェーズを最大限に活用する方法を提供します。
The easiest way to learn design patterns
Fiodar SazanavetsLearn design patterns in the easiest way possible. You will no longer have to brute-force your way through each one of them while trying to figure out how it works. The book provides a unique methodology that will make your understanding of design patterns stick. It can also be used as a reference book where you can find design patterns in seconds.
Agile Testing Condensed Japanese Edition
Yuya Kazama, Janet Gregory, and Lisa CrispinJanet GregoryとLisa Crispinによる2019年9月発行の書籍『Agile Testing Condensed』の日本語翻訳版です。アジャイルにおいてどのような考えでテストを行うべきなのか簡潔に書かれています!
OpenIntro Statistics
David Diez, Christopher Barr, Mine Cetinkaya-Rundel, and OpenIntroA complete foundation for Statistics, also serving as a foundation for Data Science.
Leanpub revenue supports OpenIntro (US-based nonprofit) so we can provide free desk copies to teachers interested in using OpenIntro Statistics in the classroom and expand the project to support free textbooks in other subjects.
More resources: openintro.org.
Tech Giants in Healthcare
Dr. Bertalan MeskoThis comprehensive guide, Tech Giants in Healthcare, clarifies how and why big tech companies step into healthcare, and breaks it down from one market player to the other in what direction they are going, what tools they are using and what horizons they have in front of them.
Functional event-driven architecture: Powered by Scala 3
Gabriel VolpeExplore the event-driven architecture (EDA) in a purely functional way, mainly powered by Fs2 streams in Scala 3!
Leverage your functional programming skills by designing and writing stateless microservices that scale, powered by stateful message brokers.
CCIE Service Provider Version 4 Written and Lab Exam Comprehensive Guide
Nicholas RussoThe service provider landscape has changed rapidly over the past several years. Networking vendors are continuing to propose new standards, techniques, and procedures for overcoming new challenges while concurrently reducing costs and delivering new services. Cisco has recently updated the CCIE Service Provider track to reflect these changes; this book represents the author's personal journey in achieving that certification.
Ansible for DevOps
Jeff GeerlingAnsible is a simple, but powerful, server and configuration management tool. Learn to use Ansible effectively, whether you manage one server—or thousands.
Top Bundles
- #1
All the Books of The Medical Futurist
6 Books
We put together the most popular books from The Medical Futurist to provide a clear picture about the major trends shaping the future of medicine and healthcare. Digital health technologies, artificial intelligence, the future of 20 medical specialties, big pharma, data privacy, digital health investments and how technology giants such as Amazon... - #2
Practical FP in Scala + Functional event-driven architecture
2 Books
Practical FP in Scala (A hands-on approach) & Functional event-driven architecture, aka FEDA, (Powered by Scala 3), together as a bundle! The content of PFP in Scala is a requirement to understand FEDA so why not take advantage of this bundle!? - #3
Software Architecture for Developers: Volumes 1 & 2 - Technical leadership and communication
2 Books
"Software Architecture for Developers" is a practical and pragmatic guide to modern, lightweight software architecture, specifically aimed at developers. You'll learn:The essence of software architecture.Why the software architecture role should include coding, coaching and collaboration.The things that you really need to think about before... - #4
CCIE Service Provider Ultimate Study Bundle
2 Books
Piotr Jablonski, Lukasz Bromirski, and Nick Russo have joined forces to deliver the only CCIE Service Provider training resource you'll ever need. This bundle contains a detailed and challenging collection of workbook labs, plus an extensively detailed technical reference guide. All of us have earned the CCIE Service Provider certification... - #6
Pattern-Oriented Memory Forensics and Malware Detection
2 Books
This training bundle for security engineers and researchers, malware and memory forensics analysts includes two accelerated training courses for Windows memory dump analysis using WinDbg. It is also useful for technical support and escalation engineers who analyze memory dumps from complex software environments and need to check for possible... - #8
Modern C++ Collection
3 Books
Get All about Modern C++C++ Standard Library, including C++20Concurrency with Modern C++, including C++20C++20Each book has about 200 complete code examples. Updates are included. When I update one of the books, you immediately get the updated bundle. You can expect significant updates to each new C++ standard (C++23, C++26, .. ) and also...